It would be very hard to justify going back to Linode afterwards, even with the best intentions to do so. "... So you seriously want us to go back to this hosting provider that caused us all this mess over Christmas / New Year's??"
It would be very hard to justify going back to Linode afterwards, even with the best intentions to do so. "... So you seriously want us to go back to this hosting provider that caused us all this mess over Christmas / New Year's??"
However, what are the alternatives? Linode have been dead stable for me the past many years, and delivers what they promise in a transparent way. No overselling of servers. No sudden extra bills.
Linode will come out stronger after this, so it won't be able to happen on this scale again.
The big question is: Who, with a lot of money, would want to hurt Linode's business in this way? This isn't just a "script kiddie" having fun. It's a very well planned and powerful attack requiring buying large botnet capacity for an extensive amount of time.
But the vps market is fairly crowded, I can't imagine what attacking a single competitor would actually accomplish.
I don't know... unless Linode has a large presense in a country where this level of play is expected. I have hard time imagining a large US cloud / hosting company comparible in size or customer base with Linode trying it. There is too high a risk, someone will talkt and reveal it.
BF Skinner, famous behavioral psychologist, wrote about this in "Beyond Freedom and Dignity" -- that much of positive emotions coming from choosing to do the morally "righteous" action exist because of the capacity for evil.
Yes I am :)
It would be easy to engage in morally bad behaviour, yet for the most part we don’t. This is a very good.
Github was attacked by China before I believe for hosting some firewall by-passing software.
Maybe a competitor, but who would bother to go that low? I can't imagine any of the popular ones trying it -- too much risk it will be exposed.
These days such things aren't that hard to come by. See the recent Lizard Squad attacks for example.
Serious question: how much is "a lot of money' in this case? How much does an attack like this cost?
From what they have said however, it seems to me like this is generally a very "smart" attack.
Unfortunately, a smart attack can be done much more cheaply in terms of botnet capacity than a dumb volumetric attack (this still combines a volumetric attack, but, in targeted ways).
I have delt with these kinds of attacks (defending them) and they are, unfortunately, much too cheap to pull off. Botnet capacity is dirt cheap, if you're willing to spend the time to find/compromise your own botnet hosts, its effectively free.
Given the length of time since the first attacks started and the downtime of the most recent attack, the big questions I have are:
1. What are they doing right now?
2. What mistakes were made / Why didn't they realise the risk beforehand? / (how) could this have been avoided?
3. What can they do in future to prevent this?